Infrastructure Security
Hosted on Hetzner
Germany/EU-based data centers with strict privacy laws
Cloudflare CDN
Enterprise DDoS protection and global edge network
Docker Container Isolation
Each service runs in isolated containers
Regular Security Updates
Automated patching and dependency updates
Data Protection
What We Never Do
Rendering Isolation
Isolated Environment
Each screenshot runs in its own sandbox
No Cross-Customer Access
Complete data separation between users
Ephemeral Instances
Browser instances destroyed after each request
API Security
API Key Authentication
Secure token-based access control with scoped permissions
Rate Limiting
Protection against abuse and denial-of-service attacks
Request Validation
Strict input validation and sanitization on all endpoints
CORS Protection
Cross-origin request safeguards and domain whitelisting
Responsible Disclosure
We appreciate security researchers who help us keep ScreenCraft secure. If you discover a vulnerability, please report it responsibly.
Report a VulnerabilityWe will acknowledge your report within 48 hours and work with you to understand and resolve the issue.